DocumentCode :
3083454
Title :
Network attack visualization and response through intelligent icons
Author :
Evans, Scott C. ; Markham, T. Stephen ; Bejtlich, Richard ; Barnett, Bruce ; Scholz, Bernhard ; Mitchell, Robert ; Yan, Weizhong ; Steinbrecher, Eric ; Impson, Jeremy
Author_Institution :
Gen. Electr. Global Res., Niskayuna, NY, USA
fYear :
2009
fDate :
18-21 Oct. 2009
Firstpage :
1
Lastpage :
7
Abstract :
Determination of appropriate response to information system attack is jointly determined by confidence of classification, nature (type) of attack, and confidence in effectiveness of response. In this paper we present a technique to rapidly assess similarity of observed behavior to attack or normal models: displaying the similarity of observed data to learned minimum description length models for normal and attack behaviors using ¿intelligent icons¿. These icons provide a visual indication of similarity to normal and attack signatures and can alert human operators to the key motifs and signatures that affect confidence in classification and indicated response.
Keywords :
data visualisation; digital signatures; attack signatures; information system attack; intelligent icons; minimum description length models; network attack visualization; Intelligent networks; Visualization;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Military Communications Conference, 2009. MILCOM 2009. IEEE
Conference_Location :
Boston, MA
Print_ISBN :
978-1-4244-5238-5
Electronic_ISBN :
978-1-4244-5239-2
Type :
conf
DOI :
10.1109/MILCOM.2009.5379856
Filename :
5379856
Link To Document :
بازگشت